Jquery UI
Jqueryui · 8 CVEs
CVE-2024-30875
HIGH
jquery-ui: XSS via window.addEventListener
Oct 17, 2024
CVE-2022-31160
MEDIUM
jQuery UI contains potential XSS vulnerability when refreshing a checkboxradio with an HTML-like initial text label
Jul 20, 2022
CVE-2021-41184
MEDIUM
XSS in the `of` option of the `.position()` util
Oct 26, 2021
CVE-2021-41183
MEDIUM
XSS in `*Text` options of the Datepicker widget
Oct 26, 2021
CVE-2021-41182
MEDIUM
XSS in the `altField` option of the Datepicker widget
Oct 26, 2021
CVE-2016-7103
MEDIUM
jquery-ui: cross-site scripting in dialog closeText
Mar 15, 2017
CVE-2012-6662
MEDIUM
jquery-ui: XSS vulnerability in default content in Tooltip widget
Nov 24, 2014
CVE-2010-5312
MEDIUM
jquery-ui: XSS vulnerability in jQuery.ui.dialog title option
Nov 24, 2014
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2024-30875 | jquery-ui: XSS via window.addEventListener | HIGH | 0.88% | Oct 17, 2024 |
| CVE-2022-31160 | jQuery UI contains potential XSS vulnerability when refreshing a checkboxradio with an HTML-like initial text label | MEDIUM | 2.64% | Jul 20, 2022 |
| CVE-2021-41184 | XSS in the `of` option of the `.position()` util | MEDIUM | 40.77% | Oct 26, 2021 |
| CVE-2021-41183 | XSS in `*Text` options of the Datepicker widget | MEDIUM | 8.53% | Oct 26, 2021 |
| CVE-2021-41182 | XSS in the `altField` option of the Datepicker widget | MEDIUM | 39.36% | Oct 26, 2021 |
| CVE-2016-7103 | jquery-ui: cross-site scripting in dialog closeText | MEDIUM | 22.58% | Mar 15, 2017 |
| CVE-2012-6662 | jquery-ui: XSS vulnerability in default content in Tooltip widget | MEDIUM | 7.47% | Nov 24, 2014 |
| CVE-2010-5312 | jquery-ui: XSS vulnerability in jQuery.ui.dialog title option | MEDIUM | 18.35% | Nov 24, 2014 |
Showing 1 to 8 of 8 CVEs